CVE-2026-3336 PKCS7_verify Certificate Chain Validation Bypass in AWS-LC

Information published.


CVE-2026-3338 PKCS7_verify Signature Validation Bypass in AWS-LC

Information published.


CVE-2026-23865 An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2.

Information published.


CVE-2026-24821 A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine.

Information published.


CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences

Information published.


CVE-2026-25541 Bytes is vulnerable to integer overflow in BytesMut::reserve

Information published.


CVE-2025-71162 dmaengine: tegra-adma: Fix use-after-free

Information published.


CVE-2025-71089 iommu: disable SVA when CONFIG_X86 is set

Information published.


CVE-2026-27199 Werkzeug safe_join() allows Windows special device names

Information published.


CVE-2026-28417 Vim has OS Command Injection in netrw

Information published.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge